Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 9 May 2007 21:02:28 +0200
From:      Roman Divacky <rdivacky@FreeBSD.org>
To:        Scott Long <scottl@samsco.org>
Cc:        freebsd-current@FreeBSD.org, "Wojciech A. Koszek" <wkoszek@FreeBSD.org>, jasone@FreeBSD.org
Subject:   Re: yacc(1) causes a fault -- "fault VA = 0xa5a5a5b1"
Message-ID:  <20070509190228.GA58304@freebsd.org>
In-Reply-To: <464213F4.5030704@samsco.org>
References:  <20070509185905.GA29365@FreeBSD.czest.pl> <464213F4.5030704@samsco.org>

next in thread | previous in thread | raw e-mail | index | archive | help
> >Sounds like a regression in malloc(3) ?
> >
> >Thanks,
> >
> 
> No, that looks like a use-after-free, with malloc filling the freed 
> memory with trash.  It's a debugging option that is turned off in
> RELENG_N branches and left on in HEAD, for precisely this reason.

this makes me ask a question - what is the state of running coverity
on fbsd userland? some of the programs in the userland are really
old and noone has touched them in ages... (yacc being obviously one of
them)

thnx for answer



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20070509190228.GA58304>